IN THE CLAIMS : 

Please amend the claims, as follows: 

Claim 1 (Currently amended): A server that provides service to a client s e rv i ces to 
cli e nts conn e cted to th e s e rver via a network, th e server comprising: 

a public-key storage unit for storing a public keys key assigned to each service 
prov i ded by th e server ; 

a challenge generator for generating a challenge to be sent from the server to the 
client after the server receives a request for ftafl the service from the client; and 

an access privilege verifier for verifying, using a con-esponding public key, whether 
a prescribed relationship exists between the challenge transmitt e d to the client and a 
response to that challenge received from the client; and 

wherein the response is calculated based on a unique ooeration for the client and 
access Driviledae proving that data is created from a private key corresponding to the 
public key. 

a controlling unit, wh i le authGnticat i ng access priv il ege of th e c l ient for a servic e provided 
by th e s e rv e r, 

for transmitting the chal l Gngc g e nerated by the cha ll enge generator to the 

dtentr 

for r e ce i v i ng the response to that cha ll enge returned from th e c li ent; 

fo r v e rify i ng, with an acc e ss pr i v il ege verifie r us i ng a publ i c key ass i gned 
to the servic e and stored in the pub li c - key storag e un i t, wh e th e r a pr e scribed 
r el at i onship ex i sts between the c h a ll enge and th e response; and 

for providing the service to th e c l ient on l y wh e n the acc e ss pr i v i lege verifier 
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succ e ssfu l ly v e r i fies th e r el ationsh i p. 

Claims 2-8 (Canceled). 

Claim 9 (Currently amended): A server as recited in claim 1, wherein the server 
is a web server that supplies a web app li cations application to dients the client : and the 
public keys key stored in th e public - key storage unit arc is assigned to an individual web 
pages page provid e d to th e cl ie nts and ar e us e d to verify th e acc e ss privi le ges of the c li ent 
for a web pag e when th e s e rver rec ei ves a r e quest from th e c li ent to access a web page . 

Claim 10 (Canceled). 

Claim 1 1 (Currently amended): A server as recited in claim 1 , wherein the server 
is a web server that supplies a web app li cations application to clients; and the public keys 
key stored in the publ i c - key storage un i t ore js assigned to groups of web pages provided 
to the clients and are is to verify the access privileges of the client for a the web page when 
the ser/er receives a request from the client to access a web page in one of the groups of 
web pages. 

Claim 12 (Canceled). 

Claim 13 (Currently amended): A server that provides serv i ces to clients 
f;pnn e f t ^' i t" t^ " < >nn,t s> r ^ i a n nnivunrk thn nnrv ft r fiompriaina: as recited in claim 1 . further 
comprising: 
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a script Interpreter for interpreting script designed to control the contents of 
services service, t l iat the serv e r provides to clients and for contro l ling the operations of the 
s e rv e r; and 

a priv i l e ge auth e nticator for authenticating acc e ss priv il eges of the c li ent when 
ca l l e d by th e script i nt e rpr e t e r. 

Claims 14-15 (Canceled). 

Claim 16 (Cun-ently amended): A method executed in a server for providing 
service to a client s e rv i ces from the server to c li ents connected to the server via a nctwori^ 
aft e r v e rifying th e acc e ss privileg e s of the c l ients for the services, pub l ic k e ys be i ng 
whererin a public kev is assigned in advance to a service r e spect i ve s e rv i ces provided by 
the server, the method comprising the steps of: 

generating a challenge when a request for [[a]] the service is received from [[a]] the 
client and transmitting the chal le ng e to th e cli e nt ; 

transmitting the challenge to the client: receiving a response to the challenge 
r e turned from the client; 

verifying v^hether that a prescribed relationship exists between the challenge sent 
to the cl i ent and the response r e c e ived from the c l ient by using the public key assigned to 
the requested service; and 

providing the requested service to the client only when the prescribed relationship 
exists. : wherein the resoonse is calculated based on a unioue operation for the client and 
a Private kev corresponding to the public kev . 
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Claim 17 (Currently amended): A method executed in a client for proving I ts 
acc e ss pr i v i l e g e for a server when requesting a service from to a server conn e cted to th e 
cl ie nt v i a a network, th e cli e nt b ei ng i n advance assigned w i th a uniqu e op e ration, the 
r e qu e st e d s e rvic e b e ing in advanc e assigned w i th a public k e y, th e c l i e nt in advance 
r e c ei v i ng acc e ss priv ile g e prov i ng data for e xpr e ss i ng th e acc e ss priv ile g e of th e c lie nt for 
th e service, th e acc e ss privil e g e proving data be i ng cr e ated from a private key 
corr e spond i ng to a publ i c k e y ass i gn e d to th e s e rv i c e and th e r e sult of a un i qu e op e rat i on 
assign e d to th e cl ie nt , the method comprising the steps of: 

receiving a challenge from the server; 

executing the a unique operation assigned to the client wherein the unique 
operation is unique to the client th e r e to; 

generating a response based on the challenge received from the server, the result 
of the unique operation, and th e acc e ss privi l eg e proving data; and 

transmitting the response to the server. 

Claims 18-21 (Canceled). 

Claim 22 (New): A system comprising: 
a server that provides service to a client; 

the server further comprising: 
a public-key storage unit that stores a public key assigned to the service; 
a challenge generator that generates a challenge to be sent from the server to the 
client after the server receives a request for the service from the client; 
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an access privilege verifier that verifies whether a prescribed relationship exists 
between the challenge and a response, the response being corresponding to the 
challenge and received from the client, and 
the client that requests the service to the server; 
the client further comprising: 

an unique operation executer that executes an unique operation assigned 
to the client; 

a response generator that generates the response to the challenge, the 
challenge being received from the server, 
wherein the response is calculated based on the unique operation and a private key 
corresponding to the public key, and the unique operation is unique to the client 

Claim 23 (New): The system according to claim 22, wherein the server sends the 
challenge to the client with a condition for using the service. 

Claim 24 (New): The system according to claim 22, wherein the unique operation 
is used under conditions that a common cryptographic hash function is assigned to all 
clients and different data is assigned to each client. 

Claim 25 (New): A client that requests service to a server, comprising: 

an unique operation executor that executes a unique operation assigned to the 

client; 

an access privilege providing data storage unit that stores access privilege 
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providing data, the access privilege providing data being created from a private key 
corresponding to a public key assigned to the requested service and a result of the unique 
operation; 

a response generator that generates a response to a challenge, the challenge 
being received from the server, and 

wherein the response is calculated based on the result of the unique operation and 
the access privilege providing data, and the unique operation is unique to the client. 

Claim 26 (New): The client according to claim 25, wherein the access privilege 
providing data storage unit is included in a portable device. 
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